{"id":5203,"date":"2020-12-20T17:16:49","date_gmt":"2020-12-20T04:16:49","guid":{"rendered":"https:\/\/kinetics.co.nz\/?p=5203"},"modified":"2020-12-20T17:16:49","modified_gmt":"2020-12-20T04:16:49","slug":"who-expected-to-be-happening-in-the-us-now","status":"publish","type":"post","link":"https:\/\/new.kinetics.co.nz\/?p=5203","title":{"rendered":"The Worst Hack in US History"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; admin_label=&#8221;section&#8221; _builder_version=&#8221;4.16&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_row admin_label=&#8221;row&#8221; _builder_version=&#8221;4.16&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.16&#8243; custom_padding=&#8221;|||&#8221; global_colors_info=&#8221;{}&#8221; custom_padding__hover=&#8221;|||&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text admin_label=&#8221;Text&#8221; _builder_version=&#8221;4.16.1&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221; sticky_enabled=&#8221;0&#8243;]<\/p>\n<p>In the last week, we\u2019ve seen two major successful attacks on critical US IT management and Cyber security tools.<\/p>\n<p>The first we learned about was on FireEye which is one of the leading and most trusted cyber security tools, used by much of the Fortune 500.\u00a0 <a href=\"https:\/\/www.nytimes.com\/2020\/12\/08\/technology\/fireeye-hacked-russians.html\" target=\"_blank\" rel=\"noopener\">https:\/\/www.nytimes.com\/2020\/12\/08\/technology\/fireeye-hacked-russians.html<\/a><\/p>\n<p><a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2020\/12\/Fireeye.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignright size-full wp-image-5204\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2020\/12\/Fireeye.jpg\" alt=\"\" width=\"420\" height=\"240\" \/><\/a><\/p>\n<p>The second one that we read about was Solarwinds \u2018Orion\u2019 &#8211; that&#8217;s a well-known and commonly used network Management tool from Solarwinds \u2013 most IT businesses including ourselves use Solarwinds products, albeit we don\u2019t use their Orion software, so are unaffected by this hack. <a href=\"https:\/\/www.theguardian.com\/world\/2020\/dec\/14\/solarwinds-breach-orion-hacked-cyber-espionage\">Orion hack exposed vast number of targets \u2013 impact may not be known for a while | Espionage | The Guardian\u00a0<\/a><\/p>\n<p>By attacking the tools that organisations use, the hackers have managed to compromise a number of these organisations including such giants as the US Energy Dept\u00a0 &#8211; <a href=\"https:\/\/www.bbc.com\/news\/world-us-canada-55358332\">https:\/\/www.bbc.com\/news\/world-us-canada-55358332<\/a>\u00a0in what seems to be named \u2018Sunburst\u2019 hacks.<\/p>\n<h2><strong>Who is affected?<\/strong><\/h2>\n<p><strong>The media are not underplaying the seriousness of this breach.\u00a0<\/strong> \u00a0Russian state actors appear to have used a supply chain hack via Solarwinds&#8217; Orion software to infiltrate US departments of State and Homeland security. \u00a0\u00a0It&#8217;s reported that \u00a0around the world 18,000 companies and government organisations use the hacked version of the software.\u00a0 It&#8217;s believed that around 40 were actively targeted.<\/p>\n<p>Kinetics use Solarwinds N-central product.\u00a0 Orion and N-central do not share infrastructure or services.\u00a0 Within Solarwinds these are separate business units.\u00a0 \u00a0Because Orion is used by the US government, the FBI, Homeland Security and other US government agencies are assisting Solarwinds.\u00a0 There is no indication that any product other than Orion has been breached.\u00a0 To be safe, Solarwinds has released a update to N-central.\u00a0 The update resets a key digital security feature making previous versions invalid. \u00a0\u00a0\u00a0Kinetics will be deploying this updated version this week.\u00a0 The update will have no impact on any clients.<\/p>\n<h2><strong>This is being called the gravest cyber-intrusion in US history<\/strong><\/h2>\n<p>All of these businesses are reputable, careful and well-protected.\u00a0 The hacks are being reported as \u2018state-sponsored\u2019 with fingers being pointed at Russia, although we noted the White House named China according to one report.<\/p>\n<p>It seems that the hackers chipped away slowly over many months, getting a little access here, adding to it there, combining various cracks in the armour until eventually they gained access.<\/p>\n<p>In our interconnected world, it is likely that we will use software that unwittingly, relies on one of these as some of the tools are in the \u2018supply chain\u2019 \u2013 a cloud system might rely on a hosting partner that uses one of these tools, or a key supplier who, in turn relies on software that is used by one of these.<\/p>\n<h2><strong>If even the best can be compromised, what hope is there for the rest of us?<\/strong><\/h2>\n<p>This is a timely reminder that everyone is under attack all the time.\u00a0 The breach of a $5billion company makes headlines, whereas most intrusions get no attention outside the victim company.<\/p>\n<p>The fundamental point we\u2019d make is <strong>anyone can be a target, and no one can guarantee to prevent a cyber incident.\u00a0 What we can do is reduce risk.<\/strong> \u00a0 That is what <a href=\"http:\/\/kinetics.co.nz\/kare-for-security-s1\/\" target=\"_blank\" rel=\"noopener\">KARE for Security<\/a>\u00a0does, with some technology and some human education.\u00a0 We must keep reminding people how to be alert, how to act and how to check anything that is suspicious.<\/p>\n<p>Coming early in the New Year will be an extended Kare for Security offering that, amongst other protections, will include a tool for detecting \u2018shadow IT\u2019.\u00a0 We are each responsible for the data we keep, whether we keep it on our own platform, or on a cloud system or SAAS system we use.\u00a0 The level of responsibility keeps increasing alongside the heightened risk.<\/p>\n<p>Reference : <a href=\"https:\/\/www.usatoday.com\/story\/tech\/2020\/12\/14\/fireeye-solarwinds-hack-breach-cybersecurity-attack\/6538645002\/\" target=\"_blank\" rel=\"noopener\">FireEye, Solarwinds hack: What you need to know about US cyber attack (usatoday.com)<\/a><\/p>\n<p>If you want to know more about our innovative, practical security solutions (more than just software) &#8211; then <a href=\"http:\/\/kinetics.co.nz\/contactus\/\" target=\"_blank\" rel=\"noopener\">contact us now!<\/a><\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In the last week, we\u2019ve seen two major successful attacks on critical US IT management and Cyber security tools. The first we learned about was on FireEye which is one of the leading and most trusted cyber security tools, used by much of the Fortune 500.\u00a0 https:\/\/www.nytimes.com\/2020\/12\/08\/technology\/fireeye-hacked-russians.html The second one that we read about was [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":6144,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"In the last week, we\u2019ve seen two major successful attacks on critical US IT management and Cyber security tools.\n\nThe first we learned about was on FireEye which is one of the leading and most trusted cyber security tools, used by much of the Fortune 500.\u00a0 [wow_colorme]<a href=\"https:\/\/www.nytimes.com\/2020\/12\/08\/technology\/fireeye-hacked-russians.html\" target=\"_blank\" rel=\"noopener\">https:\/\/www.nytimes.com\/2020\/12\/08\/technology\/fireeye-hacked-russians.html<\/a> [\/wow_colorme]\n\n<a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2020\/12\/Fireeye.jpg\"><img class=\"alignright size-full wp-image-5204\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2020\/12\/Fireeye.jpg\" alt=\"\" width=\"420\" height=\"240\" \/><\/a>\n\nThe second one that we read about was Solarwinds \u2018Orion\u2019 - that's a well-known and commonly used network Management tool from Solarwinds \u2013 most IT businesses including ourselves use Solarwinds products, albeit we don\u2019t use their Orion software, so are unaffected by this hack. <a href=\"https:\/\/www.theguardian.com\/world\/2020\/dec\/14\/solarwinds-breach-orion-hacked-cyber-espionage\">[wow_colorme]Orion hack exposed vast number of targets \u2013 impact may not be known for a while | Espionage | The Guardian [\/wow_colorme]<\/a>\n\nBy attacking the tools that organisations use, the hackers have managed to compromise a number of these organisations including such giants as the US Energy Dept\u00a0 - <a href=\"https:\/\/www.bbc.com\/news\/world-us-canada-55358332\">[wow_colorme]https:\/\/www.bbc.com\/news\/world-us-canada-55358332<\/a><a href=\"https:\/\/www.bbc.com\/news\/world-us-canada-55358332\">[\/wow_colorme]<\/a> in what seems to be named \u2018Sunburst\u2019 hacks.\n\n[header2 text=\"<strong>Who is affected?<\/strong>\" align=\"left\" color=\"#336A40\" margintop=\"\"]\n\n<strong>The media are not underplaying the seriousness of this breach.\u00a0<\/strong> \u00a0Russian state actors appear to have used a supply chain hack via Solarwinds' Orion software to infiltrate US departments of State and Homeland security. \u00a0\u00a0It's reported that \u00a0around the world 18,000 companies and government organisations use the hacked version of the software.\u00a0 It's believed that around 40 were actively targeted.\n\nKinetics use Solarwinds N-central product.\u00a0 Orion and N-central do not share infrastructure or services.\u00a0 Within Solarwinds these are separate business units.\u00a0 \u00a0Because Orion is used by the US government, the FBI, Homeland Security and other US government agencies are assisting Solarwinds.\u00a0 There is no indication that any product other than Orion has been breached.\u00a0 To be safe, Solarwinds has released a update to N-central.\u00a0 The update resets a key digital security feature making previous versions invalid. \u00a0\u00a0\u00a0Kinetics will be deploying this updated version this week.\u00a0 The update will have no impact on any clients.\n\n[header2 text=\"<strong>This is being called the gravest cyber-intrusion in US history<\/strong>\" align=\"left\" color=\"#336A40\" margintop=\"\"]\n\nAll of these businesses are reputable, careful and well-protected.\u00a0 The hacks are being reported as \u2018state-sponsored\u2019 with fingers being pointed at Russia, although we noted the White House named China according to one report.\n\nIt seems that the hackers chipped away slowly over many months, getting a little access here, adding to it there, combining various cracks in the armour until eventually they gained access.\n\nIn our interconnected world, it is likely that we will use software that unwittingly, relies on one of these as some of the tools are in the \u2018supply chain\u2019 \u2013 a cloud system might rely on a hosting partner that uses one of these tools, or a key supplier who, in turn relies on software that is used by one of these.\n\n[header2 text=\"<strong>If even the best can be compromised, what hope is there for the rest of us?<\/strong>\" align=\"left\" color=\"#336A40\" margintop=\"\"]\n\nThis is a timely reminder that everyone is under attack all the time.\u00a0 The breach of a $5billion company makes headlines, whereas most intrusions get no attention outside the victim company.\n\nThe fundamental point we\u2019d make is <strong>anyone can be a target, and no one can guarantee to prevent a cyber incident.\u00a0 What we can do is reduce risk.<\/strong>\u00a0\u00a0 That is what [wow_colorme]<a href=\"http:\/\/kinetics.co.nz\/kare-for-security\/\" target=\"_blank\" rel=\"noopener\">KARE for Security<\/a>[\/wow_colorme] does, with some technology and some human education.\u00a0 We must keep reminding people how to be alert, how to act and how to check anything that is suspicious.\n\nComing early in the New Year will be an extended Kare for Security offering that, amongst other protections, will include a tool for detecting \u2018shadow IT\u2019.\u00a0 We are each responsible for the data we keep, whether we keep it on our own platform, or on a cloud system or SAAS system we use.\u00a0 The level of responsibility keeps increasing alongside the heightened risk.\n\nReference :[wow_colorme] <a href=\"https:\/\/www.usatoday.com\/story\/tech\/2020\/12\/14\/fireeye-solarwinds-hack-breach-cybersecurity-attack\/6538645002\/\" target=\"_blank\" rel=\"noopener\">FireEye, Solarwinds hack: What you need to know about US cyber attack (usatoday.com)<\/a>\u00a0[\/wow_colorme]\n\nIf you want to know more about our innovative, practical security solutions (more than just software) - then [wow_colorme]<a href=\"http:\/\/kinetics.co.nz\/contactus\/\" target=\"_blank\" rel=\"noopener\">contact us now!<\/a>[\/wow_colorme]","_et_gb_content_width":"","footnotes":""},"categories":[4,5],"tags":[],"class_list":["post-5203","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-security"],"_links":{"self":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/5203","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=5203"}],"version-history":[{"count":0,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/5203\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/"}],"wp:attachment":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=5203"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=5203"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=5203"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}